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AMENDMENTS TO THE CLAIMS 



14, (Currently amended) A cryptographic device which encrypts input data by 
sequentially processing it by a plurality of round processing which nonlinearly transforms it 
using extended key, comprising: 

an initial splitting part which splits said input data to two pieces of block data; 



a key storage part for storing extended key; 



a cascade-connection of a plurality of [cascade-connected] round processing parts 



which is [are] supplied with said two pieces of block data and sequentially process them using 
said extended key; and 

a final combining part which combines two pieces of block data output from the 
last round of said plurality of cascade-connected round processing parts into a single piece of 
data and outputs it; 



thereto from the preceding stage, depending on extended key stored in said key storage part; 

a linear operation part which linearly operates the output data from said nonlinear 
function part and the other of said two pieces of block data; and 

a swapping part which swaps the output data from said linear operation part and 
the input block data to said nonlinear function part and provides the two pieces of swapped data 
as two pieces of input block data to said round processing part of the next round; and 



based on extended key stored in said key storage part to thereby generate transformed data; 

2 



wherein each of said plurality of round processing [part] parts comprises: 



a non-linear function part which transforms one of two pieces of block data input 



wherein said nonlinear function part comprises: 



a key-dependent linear transformation part which linearly transforms input data 
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a splitting part which split the transformed data from said key-dependent linear 
transformation part to a plurality of bit strings; 

a plurality of first nonlinear transformation parts each one of which non linearly 
[transform] transforms corresponding one of all of said plurality of bit strings, respectively, and 
output transformed data; 

a first linear transformation part which linearly transforms said transformed data 
from said plurality of first nonlinear transformation parts in association with each other and 
outputs a plurality of pieces of uniformed data to a plurality of routes, respectively; 

a second nonlinear transformation part provided in [at least] each one of said 
plurality of routes, for nonlinearly transforming said transformation parts, and for outputting the 
transformed data as data of that route; and 

a combining part which combines data from said plurality of routes into output 
data of said nonlinear function part. 

1 5. (Original) The cryptographic device of claim 14, wherein said first Linear 
transformation part comprises a key-dependent linear operation part which linearly transforms 
said plurality of pieces of uniformed data based on extended key stored in said key storage part 
and outputs the plurality of transformed data as data of said plurality of routes. 

16. (Original) The cryptographic device of claim 15, further comprising a second 
linear transformation part which linearly transforms the output data from said combining part to 
provide the output data of said nonlinear function part. 
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17. (Previously amended) The cryptographic device of claim 16, wherein said second 
linear transformation part is a linear transformation part which performs a linear transformation 
based on extended key stored in said key storage part. 

1 8. (Original) The cryptographic device of claim 17, wherein said first linear 
transformation part comprises at least one exclusive OR circuit provided in each of said plurality 
of routes, for outputting said uniformed data to said each route by an exclusive-OR operation of 
data of said each route and data of other routes, 

1 9. (Original) The cryptographic device of claim 14* further comprising a second 
linear transformation part which linearly transforms the output data of said combining part to 
provide the transformed data as output data of said nonlinear function part. 

20. (Original) The cryptographic device of claim 19, wherein said second linear 
transformation part is a linear transformation part which performs a linear transformation based 
on extended key stored in said key storage part 

21. (Original) The cryptographic device of claim 19 7 wherein said first linear 
transformation part comprises at least one exclusive OR circuit provided in each of said plurality 
of routes, for outputting said uniformed data to said each route by an exclusive-OR operation of 
data of said each route and data of other routes. 
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22. (Original) The cryptographic device of any one of claims 14 through 21 , further 
comprising an initial linear transformation part which linearly transforms said input data and 
supplies it to said initial splitting part. 

23. (Original) The cryptographic device of claim 22, wherein said initial linear 
transformation part is a transformation part which performs a linear transformation based on 
extended key stored in said key storage part. 

24. (Original) The cryptographic device of claim 23, further comprising a final linear 
transformation part which linearly transforms the output data of said final combining part to 
provide it as the output of said cryptographic device. 

25. (Original) The cryptographic device of claim 24, wherein said final linear 
transformation part is a transformation part which performs a linear transfej^i|Ltion based on 
extended key stored in said key storage part. 

26. (Original) The cryptographic device of claim 22, further comprising a final linear 
transformation part which linearly transforms the output data of said final combining part to 
provide it as the output of said cryptographic device. 

27. (Original) The cryptographic device of claim 26, wherein said final linear 
transformation part is a transformation part which performs a linear transformation based on 
extended key stored in said key storage part. 



PAGE 8117 ' RCVD AT 311/2004 9:03:49 AM [Eastern Standard Time] 9 SVR:USPTO€FXRF-1/0* DNIS:8729306 ■ CSID:2022936229* DURATION (mm-ss):03-54 



MAR-01-2004 09=57 CONNOLLY BOUE LODGE &HUTZ " 2022936229 P. 09/1? 



Application No.; 09/446,525 Docket No.: 20162-00540-US 



28. (Original) The cryptographic device of claim 26, wherein said plurality of routes 
are first, second, third and fourth routes arranged in this order. 

Claims 29-30 cancelled 

31 . (Currently amended) The cryptographic device of claim [30] 28, wherein said 
first linear transformation part comprises: 

a first exclusive OR circuit provided in said second route, for carrying out the 
exclusive-OR between data of said first route and data of said second route; 

a second exclusive-OR circuit provided in said third route, for carrying out the 
exclusive OR between data of said fourth route and data of said third route; 

a third exclusive-OR circuit provided in said third route, for carrying out the 
exclusive OR between the output of said second exclusive-OR circuit and the output of said first 
exclusive-OR circuit; 

a fourth exclusive-OR circuit provided in said second route, for carrying out the 
exclusive OR between the output of said first exclusive-OR circuit and the output of said third 
exclusive-OR circuit; 

a fifth exclusive-OR circuit provided in said first route, for carrying out the 
exclusive OR between the output of said first exclusive-OR circuit and the output of said fourth 
exclusive-OR circuit; 
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a sixth exclusive-OR circuit provided in said fourth route, for carrying out the 
exclusive OR between the data of said fourth route and the output of said third exclusive-OR 
circuit. 



32. (Original) The cryptographic device of claim 23, wherein said plurality of routes 
are first, second, third and fourth routes arranged in this order. 

Claims 33-34 cancelled 

35. (Currently amended) The cryptographic device of claim [34] 32, wherein said 
first linear transformation part compri ses : 

a first exclusive OR circuit provided in said second route, for carrying out the 
exclusive-OR between data of said first route and data of said second route; 

a second exclusive-OR circuit provided in said third route, for carrying out the 
exclusive OR between data of said fourth route and data of said third route; 

a third exclusive-OR circuit provided in said third route, for carrying out the 
exclusive OR between the output of said second exclusive-OR circuit and the output of said first 
exclusive-OR circuit; 

a fourth exclusive-OR circuit provided in said second route, for carrying out the 
exclusive OR between the output of said first exclusive-OR circuit and the output of said third 
exclusive-OR circuit; 
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a fifth exclusive-OR circuit provided in said first route, for carrying out the 



exclusive OR between the data of said first route and the output of said fourth exclusive-OR 
circuit; and 



exclusive OR between the data of said fourth route and the output of said third exclusive-OR 
circuit. 

36. (Original) The cryptographic device of claims 25, wherein said plurality of routes 
are first, second, third and fourth routes arranged in this order. 

Claims 37-38 cancelled 

39* (Currently amended) The cryptographic device of claim [38] 36, wherein said 
first linear transformation part comprises; 

a first exclusive OR circuit provided in said second route, for carrying out the 
exclusive-OR between data of said first route and data of said second route; 

a second exclusive-OR circuit provided in said third route, for carrying out the 
exclusive OR between data of said fourth route and data of said third route; 

a third exclusive-OR circuit provided in said third route, for carrying out the 
exclusive OR between the output of said second exclusive-OR circuit and the output of said first 
exclusive-OR circuit; 



a sixth exclusive-OR circuit provided in said fourth route, for carrying out the 
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a fourth exclusive-OR circuit provided in said second route, for carrying out the 
exclusive OR between the output of said first exclusive-OR circuit and the output of said third 
exclusive-OR circuit; 

a fifth exclusive-OR circuit provided in said first route, for carrying out the 
exclusive OR between the data of said first route and the output of said fourth exclusive-OR 
circuit; and 

a sixth exclusive-OR circuit provided in said fourth route, for carrying out the 
exclusive OR between the data of said fourth route and the output of said third exclusive-OR 
circuit. 

40. (Previously amended) The cryptographic device of any one of claims 14, 15, 16, 
1 7, 1 8, 1 9, 20 or 21 , further comprising a final linear transformation part which linearly 
transforms the output data of said final combining part to provide it as the output of said 
cryptographic device. 

41 . (Original) The cryptographic device of claim 40, wherein said final linear 
transformation part is a transformation part which performs a linear transformation based on 
extended key stored in said key storage part, 

42. (Original) The cryptographic device of claim 40, wherein said plurality of routes 
are first, second, third and fourth routes arranged in this order. 

43. Cancelled 
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44, (Original) The cryptographic device of claim 42, wherein said second nonlinear 
transformation part is provided in each of said first and fourth routes. 

45. (Currently amended) The cryptographic device of claim [44] 42, wherein said 
first linear transformation part comprises: 

a first exclusive OR circuit provided in said second route, for carrying out the 
exclusive-OR between data of said first route and data of said second route; 

a second exclusive-OR circuit provided in said third route, for carrying out the 
exclusive OR between data of said fourth route and data of said third route; 

a third exclusive-OR circuit provided in said third route, for carrying out the 
exclusive OR between the output of said second exclusive-OR circuit and the output of said first 
exclusive-OR circuit; 

a fourth exclusive-OR circuit provided in said second route j if6^carrying out the 
exclusive OR between the output of said first exclusive-OR circuit and the output of said third 
exclusive-OR circuit; 

a fifth exclusive-OR circuit provided in said first route, for carrying out the 
exclusive OR between the data of said first route and the output of said fourth exclusive-OR 
circuit; and 

a sixth exclusive-OR circuit provided in said fourth route, for carrying out the 
exclusive OR between the data of said fourth route and the output of said third exclusive-OR 
circuit. 
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46. (Previously amended) The cryptographic device of any one of claims 14, 1 5, 16, 
1 7, 1 8, 19, 20 or 21 , wherein said plurality of routes are first, second, third and fourth routes 
arranged in this order. 

47. Cancelled 

48. Cancelled 

49. (Currently amended) The cryptographic device of claim [48] 46, wherein said 
first linear transformation part comprises: 

a first exclusive OR circuit provided in said second route, for carrying out the 
exclusive-OR between data of said first route and data of said second route; 

a second exclusive OR circuit provided in said third route, for carrying out the 
exclusive OR between data of said fourth route and data of said third route; 

a third exclusive-OR circuit provided in said third route, for carrying out the 
exclusive OR between the output of said second exclusive-OR circuit and the output of said first 
exclusive-OR circuit; 



exclusive OR between the output of said first exclusive-OR circuit and the output of said third 
exclusive-OR circuit; 



exclusive OR between the data of said first route and the output of said fourth exclusive-OR 
circuit; and 
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a fifth exclusive-OR circuit provided in said first route, for carrying out the 
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a sixth exclusive-OR circuit provided in said fourth route, for 
carrying out the exclusive OR between the data of said fourth route and the output 
of said third exclusive-OR circuit. 
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